Skip to content
Notis

Keep abuse reports enriched as details change

When new evidence lands in a report, let Notis look up the IP address and keep the result connected to the report.

Trigger

Page Content Updated

Triggers when the body content of a Notion page is updated. Customer optionally scopes with at most one of: - data_source_id: any row in this data source - page_id: this specific page - parent_page_id: any page whose immediate parent is this page With none set, fires for any page content edit in the workspace the integration has access to. Notion aggregates content edits within a short window (~60s typical).

Action

Bulk IP Geolocation

Tool to retrieve geolocation information for multiple IP addresses in bulk. Use when processing up to 1000 IPs at once.

Why this helps

New report details can arrive in bursts, making it easy to forget a follow-up IP lookup.

  • Prompt a lookup when incident evidence is added.
  • Keep attention on report review instead of repetitive searching.
  • Use a consistent enrichment step as reports evolve.

Setup

Build it in a few focused steps.

  • 1Connect Notion and Ip2location io once from the Notis portal.
  • 2Create an automation there or tell Notis what you want in plain language.
  • 3State the single outcome: when an abuse report page's content changes and contains an IP address, retrieve its location and report the result with the page reference.
  • 4Choose Page Content Updated scoped to the abuse report page or data source and select a reporting channel.
  • 5Test by adding an IP address to one real abuse report.

Questions about this workflow

Will it run after every keystroke?

Notion aggregates content edits over a short window, so the trigger is based on page content update events rather than each keystroke.

Can it handle reports with no IP?

Instruct Notis to skip the lookup when the updated report has no IP address.

When this happens · Trigger

Do this · Action

Supported Triggers and Actions

Notis builds workflows that link Notion to Ip2location io. A trigger fires from one place; an action lands in another.

Notion triggers

Ip2location io actions

Recurring trigger

Notis starts this workflow on a schedule, such as daily, weekly, or during business hours.

TriggerScheduled

Bulk IP Geolocation

Tool to retrieve geolocation information for multiple IP addresses in bulk. Use when processing up to 1000 IPs at once.

ActionInstant

Webhook trigger

Notis starts this workflow when an external tool or custom backend sends an HTTP request.

TriggerInstant

Domain WHOIS Lookup

Tool to retrieve WHOIS information for a given domain. Use when you need domain registration and contact details via IP2WHOIS API.

ActionInstant

All Page Events

Triggers when any Notion page is created or updated across the workspace.

TriggerPolling

Get API Key

Tool to retrieve the configured API key. Use when authentication is needed for IP2Location.io requests.

ActionInstant

Comment Created

Triggers when a new comment is created in Notion. Optional `page_id` filter scopes to comments on a specific page. When omitted, fires for any new comment in the workspace the integration has access to. Requires the 'Read comments' capability on the Notion integration. If a connection was authorized before that capability was enabled, the user must re-authorize the connection for comment events to flow.

TriggerInstant

IP2WHOIS Hosted Domain

Tool to retrieve hosted domain names by IP address. Use when you need to list domains hosted on a given IP. Call after confirming the IP.

ActionInstant

New Comment

Triggers when a new comment is added to a specified Notion block or page.

TriggerPolling

Database Created

Triggers when a new Notion database (the container) is created. A database is the post-2025-09-03 container that holds one or more data sources. This trigger fires for the container's creation event (`database.created`), distinct from `NOTION_DATASOURCE_CREATED` which fires when a new data source is added to an existing database. Most customers calling Notion's `POST /v1/databases` (the legacy API) or creating a database via the Notion UI will see this event. Adding a new data source to an existing database fires `data_source.created` instead — use `NOTION_DATASOURCE_CREATED` for that. Notion's payload puts `entity.type: "block"` (the container is a `child_database` block in the content tree) and `entity.id` is the database id.

TriggerInstant

Data Source Created

Triggers when a new Notion data source is created. Fires workspace-wide. The payload's `data.parent` carries the data source's tree parent (typically the teamspace) for downstream filtering. A single template-based database creation can fire multiple `data_source.created` events at once — one per data source the template instantiates.

TriggerInstant

Data Source Schema Updated

Triggers when a Notion data source's schema is updated. Fires on column add / remove / rename. Payload includes `data.updated_properties: [{id, name, action}]` so consumers can discriminate the kind of change downstream. Optional `data_source_id` filter scopes to schema changes on a single data source. When omitted, fires for any schema change in the workspace the integration has access to. Note: adding a column also fires `page.properties_updated` once per existing row in the data source. Customers wanting a single structural-change signal should use this trigger.

TriggerInstant

Connect any two apps with Notis in the middle.

Notion and Ip2location io, or any other combination from 1,000+ integrations.

When this happens · Trigger

Do this · Action

Save your first hour today.

7-day trial of any paid plan, with 20$ of usage included.
No card. Works with personal or business Ip2location io.